Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243241 7.5 危険 GNU Project - GNU C Library の nis/nss_nis/nis-pwd.c における NIS アカウントの暗号化されたパスワードを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0015 2012-06-26 16:19 2010-01-14 Show GitHub Exploit DB Packet Storm
243242 3.7 注意 Fedora Project - SSSD における制限されたアクセスを回避される脆弱性 CWE-287
不適切な認証
CVE-2010-0014 2012-06-26 16:19 2010-01-14 Show GitHub Exploit DB Packet Storm
243243 4.3 警告 Apache Software Foundation - Apache CouchDB における重要情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0009 2012-06-26 16:19 2010-04-5 Show GitHub Exploit DB Packet Storm
243244 2.1 注意 GNU Project - Bash の /etc/profile.d/60alias.sh スクリプトにおける存在するファイルを非表示にされる脆弱性 CWE-20
不適切な入力確認
CVE-2010-0002 2012-06-26 16:19 2010-01-14 Show GitHub Exploit DB Packet Storm
243245 4.3 警告 aj square - AJ Auction Pro OOPD の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4989 2012-06-26 16:19 2010-08-25 Show GitHub Exploit DB Packet Storm
243246 7.5 危険 TYPO3 Association
christian ehmann
- TYPO3 の event_registr 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4968 2012-06-26 16:19 2010-07-28 Show GitHub Exploit DB Packet Storm
243247 7.5 危険 elemente
TYPO3 Association
- TYPO3 の ast_addresszipsearch 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4966 2012-06-26 16:19 2010-07-28 Show GitHub Exploit DB Packet Storm
243248 9.3 危険 adammo - Fat Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4962 2012-06-26 16:19 2010-07-28 Show GitHub Exploit DB Packet Storm
243249 7.5 危険 Emophp Programming - EMO Breeder Manager の video.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4958 2012-06-26 16:19 2010-07-28 Show GitHub Exploit DB Packet Storm
243250 7.5 危険 ATutor - AdPeeps におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-4945 2012-06-26 16:19 2010-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268441 7.1 HIGH
Network
apple iphone_os
mac_os_x
tvos
watchos
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. The issue involves th… CWE-200
Information Exposure
CVE-2016-4660 2024-11-21 11:52 2017-02-20 Show GitHub Exploit DB Packet Storm
268442 8.8 HIGH
Local
apple mac_os_x An issue was discovered in certain Apple products. macOS before 10.12 is affected. The issue involves a sandbox escape related to launchctl process spawning in the "libxpc" component. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-4617 2024-11-21 11:52 2017-02-20 Show GitHub Exploit DB Packet Storm
268443 6.5 MEDIUM
Network
apple safari
icloud
itunes
apple_tv
An issue was discovered in certain Apple products. Safari before 10.0.1 is affected. iCloud before 6.0.1 is affected. iTunes before 12.5.2 is affected. tvOS before 10.0.1 is affected. The issue invol… CWE-200
Information Exposure
CVE-2016-4613 2024-11-21 11:52 2017-02-20 Show GitHub Exploit DB Packet Storm
268444 7.5 HIGH
Network
samsung samsung_mobile Samsung devices with Android KK(4.4), L(5.0/5.1), or M(6.0) allow attackers to cause a denial of service (system crash) via a crafted system call to TvoutService_C. CWE-20
 Improper Input Validation 
CVE-2016-4547 2024-11-21 11:52 2017-02-14 Show GitHub Exploit DB Packet Storm
268445 5.5 MEDIUM
Local
samsung samsung_mobile Samsung devices with Android KK(4.4) or L(5.0/5.1) allow local users to cause a denial of service (IAndroidShm service crash) via crafted data in a service call. CWE-20
 Improper Input Validation 
CVE-2016-4546 2024-11-21 11:52 2017-02-14 Show GitHub Exploit DB Packet Storm
268446 5.5 MEDIUM
Local
uclouvain
fedoraproject
openjpeg
fedora
Divide-by-zero vulnerability in the opj_tcd_init_tile function in tcd.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (application crash) via a crafted jp2 file. NOTE:… CWE-369
 Divide By Zero
CVE-2016-4797 2024-11-21 11:52 2017-02-4 Show GitHub Exploit DB Packet Storm
268447 5.5 MEDIUM
Local
uclouvain
fedoraproject
openjpeg
fedora
Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4796 2024-11-21 11:52 2017-02-4 Show GitHub Exploit DB Packet Storm
268448 5.5 MEDIUM
Local
mini-xml_project
debian
mini-xml
debian_linux
The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file. CWE-400
 Uncontrolled Resource Consumption
CVE-2016-4571 2024-11-21 11:52 2017-02-4 Show GitHub Exploit DB Packet Storm
268449 5.5 MEDIUM
Local
mini-xml_project
debian
mini-xml
debian_linux
The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file. CWE-400
 Uncontrolled Resource Consumption
CVE-2016-4570 2024-11-21 11:52 2017-02-4 Show GitHub Exploit DB Packet Storm
268450 7.5 HIGH
Network
cakephp cakephp The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header. CWE-20
 Improper Input Validation 
CVE-2016-4793 2024-11-21 11:52 2017-01-24 Show GitHub Exploit DB Packet Storm